CVE-2024-27968: WordPress Super Page Cache for Cloudflare plugin <= 4.7.5 - Cross Site Request Forgery (CSRF) to XSS vulnerability
Published Mar 21, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Optimole Super Page Cache for Cloudflare allows Stored XSS.This issue affects Super Page Cache for Cloudflare: from n/a through 4.7.5.
Affected Software
3 affected components
Optimole Super Page Cache Wordpress<=4.7.5
Optimole Super Page Cache for Cloudflare>=n/a, <=4.7.5
WordPress Super Page Cache for Cloudflare<=4.7.5
Remediation
Information
Update to 4.7.6 or a higher version.
Event History
Mar 21, 2024
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-27968?
CVE-2024-27968 is classified as a medium-severity Cross-Site Request Forgery (CSRF) vulnerability that can lead to Stored XSS.
2
How do I fix CVE-2024-27968?
To fix CVE-2024-27968, update the Optimole Super Page Cache for Cloudflare plugin to a version later than 4.7.5.
3
Which versions of Optimole Super Page Cache for Cloudflare are affected by CVE-2024-27968?
CVE-2024-27968 affects versions n/a through 4.7.5 of the Optimole Super Page Cache for Cloudflare plugin.
4
What type of vulnerability is CVE-2024-27968?
CVE-2024-27968 is a Cross-Site Request Forgery (CSRF) vulnerability that can result in Stored XSS if exploited.
5
Is CVE-2024-27968 specific to any particular platform?
CVE-2024-27968 specifically affects the Optimole Super Page Cache for Cloudflare plugin used in WordPress.